> Source: [sk178944](https://support.checkpoint.com/results/sk/sk178944)

# sk178944 - High CPU usage when performing CRL check per Security Gateway

| Property | Value |
|----------|-------|
| Solution ID | sk178944 |
| Date Created | 2022-04-27 |
| Last Modified | 2022-07-12 |
| Technical Level | General |
| Products | Spark Firewall (Locally Managed) |
| Versions | R81.10.X |
| Platform | 1570R, 1500, 1600, 1800 |

## Symptoms

- * High CPU usage when performing CRL check per Security Gateway.

* User can access HTTPS sites.

## Solution

In instances when the CRL size is large (above 10MB), performing the CRL check on every gateway can cause high CPU usage.

Use this clish command to bypass the CRL check on a specific Quantum Spark Security Gateway:

`validate_crl_per_gw {on | off | show}`

There is an option to configure bypass CRL in the Security Management Server, but it is a global parameter which affects all the gateways which are managed by the server.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
